Web Hosting Forum | Lunarpages
News: April 3, 2008 - New Contest! - Win 5 Years of Hosting and $1,000!
May 5, 2008 - May 08 Web Site of the Month? - Submit your LINKS!!!
 
*
Welcome, Guest. Please login or register.
Did you miss your activation email?
May 16, 2008, 01:17:58 AM


Login with username, password and session length


Pages: [1]   Go Down
  Print  
Author Topic: Security Best Practices  (Read 571 times)
clwill
Newbie
*
Offline Offline

Posts: 1


« on: August 01, 2007, 07:51:27 AM »

I am hosting several sites (on another host) and moving to a dedicated server on Lunarpages.  Some of these sites are being attacked in a variety of ways.

First it was DDoS attacks, but moving to a dedicated server and vigorously tuning the performance of the sites seems to have mitigated that problem.

Now they are doing some form of attack that eats up all the CPU and memory on the system.  I'm not sure what it is, but there are no SSH logins to the root (other than me), I have the tmp directory stuff done (see other thread), I believe I have all the directories protected correctly, but clearly the machine is compromised.  It just grinds to a halt, and the memory is just slammed.

So, my question is, can anyone give me a pointer to some security best practices?  What could someone be doing that's slamming the machine like that?  Is there some way to audit a machine to see if I have anything open that would allow this kind of thing?

I want to protect this new Lunarpages machine the best I can before I move the sites there.  I appreciate any help you can offer.
Logged
perestrelka
Administrator
Jedi
*****
Offline Offline

Posts: 896



« Reply #1 on: August 02, 2007, 01:09:21 AM »

Hi,

I would recommend to determine what is excessively hitting CPU and memory of your server first to be able then to fight against the cause. If your server has cPanel, you would check CPU/Memory/MySQL usage stats in WHM. Running the "top" command in shell could also help you in figuring out which processes are the most CPU and memory consuming.
Logged

Kind Regards,
Vlad Artamonov
Pages: [1]   Go Up
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.3 | SMF © 2006-2007, Simple Machines LLC
Seo4Smf v0.2 © Webmaster's Talks


Valid XHTML 1.0! Valid CSS! Dilber MC Theme by HarzeM